CVE List

Id CVE No. Status Description Phase Votes Comments Actions
57086  CVE-2012-3843  Candidate  Cross-site scripting (XSS) vulnerability in the registration page in e107, probably 1.0.1, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120703)  None (candidate not yet proposed)    View
57342  CVE-2012-4099  Candidate  The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed UPDATE message, aka Bug ID CSCtn13065.  Assigned (20120731)  None (candidate not yet proposed)    View
57598  CVE-2012-4355  Candidate  TCPIPS_Story.dll in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary code via a port-46824 TCP packet with a crafted negative integer after the opcode, triggering incorrect function-pointer processing that can lead to a buffer overflow. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4354.  Assigned (20120819)  None (candidate not yet proposed)    View
57854  CVE-2012-4611  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Adaptive Authentication On-Premise (AAOP) before 7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20120824)  None (candidate not yet proposed)    View
58110  CVE-2012-4867  Candidate  Directory traversal vulnerability in modules/com_vtiger_workflow/sortfieldsjson.php in vtiger CRM 5.1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the module_name parameter.  Assigned (20120906)  None (candidate not yet proposed)    View

Page 20247 of 20943, showing 5 records out of 104715 total, starting on record 101231, ending on 101235

Actions